DocumentCode :
1677980
Title :
Problem Space and Special Characteristics of Security Testing in Live and Operational Environments of Large Systems Exemplified by a Nationwide IT Infrastructure
Author :
Schanes, Christian ; Fankhauser, Florian ; Grechenig, Thomas ; Schafferer, Michael ; Behning, Kai ; Hovemeyer, Dieter
Author_Institution :
Ind. Software (INSO), Vienna Univ. of Technol., Vienna, Austria
fYear :
2009
Firstpage :
161
Lastpage :
166
Abstract :
The paper discusses foundations and requirements for testing security robustness aspects in operational environments while adhering to defined protection values for data. It defines the problem space and special characteristics of security testing in large IT infrastructures. In this area there are different environments with varying characteristics, e.g., regarding confidentiality of data. Common environments based on an existing IT project are defined. Testing in dedicated test environments is state of the art, however, sometimes this is not sufficient and testing in operational environments is required. Case studies showed many restrictions in the security test process, e.g., limited access for testers, which have to be addressed. The problems of testing in these operational environments are pointed out. Experiences and some current solution approaches for testing these special environments are shown (e.g., usage of disaster/recovery mechanism).
Keywords :
information technology; program testing; security of data; German Health Telematics Infrastructure; large live environment; large operational environment; nationwide IT infrastructure; security testing; Communication system security; Data privacy; Data security; Life testing; Protection; Software testing; Space technology; System testing; Telematics; Wide area networks; Communication system operations and management; Data security; Privacy; Testing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advances in System Testing and Validation Lifecycle, 2009. VALID '09. First International Conference on
Conference_Location :
Porto
Print_ISBN :
978-1-4244-4862-3
Electronic_ISBN :
978-0-7695-3774-0
Type :
conf
DOI :
10.1109/VALID.2009.24
Filename :
5279403
Link To Document :
بازگشت